Elektroda.pl
Elektroda.pl
X

Search our partners

Find the latest content on electronic components. Datasheets.com
Please add exception to AdBlock for elektroda.pl.
If you watch the ads, you support portal and users.

[Solved] Niechciane rzeczy w przeglądarce

shik 26 Feb 2019 08:10 294 3
  • #1
    shik
    Level 11  
    Witam.
    Ładują mi się do przeglądarki Firefox niechciane strony, np zamiast googla jakieś inne do wyszukiwania itp.
    Zrobiłem skan FRSTem i załączam w do tego wpisu. Proszę o pomoc.
    Dziękuję.
  • Helpful post
    #3
    RADU23
    Moderator of Computers service
    Odinstaluj:
    - YoutubeDownloader

    Otwórz notatnik i wklej zawartość:
    Quote:
    HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\...\Run: [YoutubeDownloader_upd] => C:\Users\Admin\AppData\Roaming\YoutubeDownloader_upd\python\pythonw.exe [95904 2018-11-02] (Python Software Foundation -> Python Software Foundation) <==== UWAGA
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\...\Run: [YoutubeDownloader] => C:\Users\Admin\AppData\Roaming\YoutubeDownloader\python\pythonw.exe [95904 2018-11-02] (Python Software Foundation -> Python Software Foundation) <==== UWAGA
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\...\Run: [Kodobi] => C:\Users\Admin\AppData\Roaming\Kodobi\python\pythonw.exe [95904 2018-11-02] (Python Software Foundation -> Python Software Foundation) <==== UWAGA
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\...\MountPoints2: {67074385-1977-11e5-a980-a41f725b118b} - F:\setup.exe
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\...\MountPoints2: {b4205d92-d0a1-11e5-a94b-a41f725b118b} - F:\LaunchU3.exe -a
    GroupPolicy: Ograniczenia - Windows Defender <==== UWAGA
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%6...5xjRuJgwxp105W6JtXRFZHfmS-Tospd04_lg,,&q={searchTerms}
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web-pl.com/
    SearchScopes: HKLM-x32 -> DefaultScope - brak wartości
    SearchScopes: HKU\S-1-5-21-2305951157-1198981153-406972826-1000 -> DefaultScope {B9501592-9937-4D64-B5B2-0D19C830AA4C} URL = hxxp://www.web-pl.com/search?q={searchTerms}
    SearchScopes: HKU\S-1-5-21-2305951157-1198981153-406972826-1000 -> {B9501592-9937-4D64-B5B2-0D19C830AA4C} URL = hxxp://www.web-pl.com/search?q={searchTerms}
    S2 BnmnService; C:\Windows\system32\BnmnSrv.exe [X]
    HKU\S-1-5-21-2305951157-1198981153-406972826-1000\...\ChromeHTML: -> <==== UWAGA
    ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
    ContextMenuHandlers1: [PDFTools] -> {1A359BC8-317D-462a-AD1C-51022D771581} => C:\debenu pdf tools\Debenu.PDF.Tools.Pro.v3.1.0.19.Incl.Serial-D.H.Crew\Debenu.PDF.Tools.Pro.v3.1.0.19.Incl.Serial-D.H.Crew\PDF Tools\PDFToolsShell64.dll -> Brak pliku
    ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
    ContextMenuHandlers4: [PDFTools] -> {1A359BC8-317D-462a-AD1C-51022D771581} => C:\debenu pdf tools\Debenu.PDF.Tools.Pro.v3.1.0.19.Incl.Serial-D.H.Crew\Debenu.PDF.Tools.Pro.v3.1.0.19.Incl.Serial-D.H.Crew\PDF Tools\PDFToolsShell64.dll -> Brak pliku
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll -> Brak pliku
    Task: {0918B669-2D1A-4631-A063-A392F161304D} - System32\Tasks\Kodobi => C:\Users\Admin\AppData\Roaming\Kodobi\python\pythonw.exe (Python Software Foundation -> Python Software Foundation) <==== UWAGA
    Task: {1CA0E7EE-5FA9-4F69-AB70-44773B70E5C7} - System32\Tasks\Kodobi2 => C:\Users\Admin\AppData\Roaming\Kodobi\python\pythonw.exe (Python Software Foundation -> Python Software Foundation) <==== UWAGA
    Task: {49BE1214-7F4D-4AAF-9327-AC9E01952AD8} - System32\Tasks\{5B9D74B0-CE2F-48F0-9FC2-9C43B187970F} => C:\Windows\system32\pcalua.exe -a D:\setup.exe -d D:\
    Task: {63622C2A-A662-4B9B-819D-2AD611A70D47} - System32\Tasks\{45093E09-F256-4B45-8BA2-BBA96856CCE3} => C:\Windows\system32\pcalua.exe -a "D:\Additional Files\Pro Tools M-Powered Demo Session Installer\M-Powered Demo Session Setup.exe" -d "D:\Additional Files\Pro Tools M-Powered Demo Session Installer"
    Task: {8D37FBF6-0B65-4F8B-907F-E0D18FB70AA4} - System32\Tasks\YoutubeDownloader => C:\Users\Admin\AppData\Roaming\YoutubeDownloader\python\pythonw.exe (Python Software Foundation -> Python Software Foundation) <==== UWAGA
    Task: {ADBDA287-433F-42E0-9517-59928552C116} - System32\Tasks\{ABB479C9-BAAF-4999-B890-21292212E62C} => C:\Windows\system32\pcalua.exe -a "C:\m-audio\M-Track_1_0_6\M-Track_1_0_6\Install M-Audio M-Track Series Windows_1.0.6.exe" -d C:\m-audio\M-Track_1_0_6\M-Track_1_0_6
    Task: {BAF9822A-EEBA-4299-AFEB-6257063FE594} - System32\Tasks\{89AA4677-2D51-4DE8-8D55-4EFA753AA6F1} => C:\Windows\system32\pcalua.exe -a D:\SW_CD_Office_2007_W32_Polish_1_PA_BP_MLF_X12-19421.EXE -d D:\
    Task: {C6241E69-8AE2-4C66-B8C1-1CC7F61E9848} - System32\Tasks\YoutubeDownloader_upd => C:\Users\Admin\AppData\Roaming\YoutubeDownloader_upd\python\pythonw.exe (Python Software Foundation -> Python Software Foundation) <==== UWAGA
    Task: {FE03EBC6-562A-4718-B549-ADF6E2396F70} - System32\Tasks\{AB306544-79DD-4842-8F19-E69A41C519D9} => C:\Windows\system32\pcalua.exe -a "C:\windows movie maker\Windows Movie Maker 2012.exe" -d "C:\windows movie maker"
    AlternateDataStreams: C:\ProgramData\Temp:56E2E879 [118]


    Plik zapisz pod nazwą fixlist.txt i umieść w folderze gdzie masz FRST.exe.
    Uruchom FRST i kliknij w Fix/Napraw.
  • #4
    shik
    Level 11  
    Usunięto złośliwce dzięki działaniom zaproponowanym.